Jobgether
Jobgether

Incident Response Principal Consultant

operationsfull-timeUS
SALARY
$115k – $160k/yr
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
general
Apply for this position
✦ AutoApply Sick of applying? We apply to roles like this for you, up to 20 a month.
Learn more

About the role

Accountabilities:

    • Lead complex incident response engagements, coordinating investigations and guiding teams through high-priority cybersecurity incidents.
    • Conduct intrusion investigations, including work performed under the direction of outside counsel, and determine the scope, impact, and nature of compromises.
    • Perform host and network-based forensic analysis across Windows, macOS, and Linux environments using a range of investigative and forensic tools.
    • Develop and apply advanced threat-hunting methodologies to identify malicious activity across large and complex datasets.
    • Analyze network traffic, protocols, and security telemetry using technologies such as Zeek/Bro and Suricata to identify indicators of compromise and attacker behavior.
    • Perform basic malware analysis and apply static and dynamic analysis techniques to understand malicious capabilities and behaviors.
    • Support cloud incident response activities across environments such as AWS, Azure, and Google Cloud.
    • Develop customized tactical and strategic remediation recommendations for organizations affected by targeted attacks.
    • Communicate technical findings, risks, recommendations, and investigation outcomes clearly to customer executives, technical stakeholders, regulators, and legal counsel.
    • Manage projects effectively in a matrixed consulting environment while coordinating internal teams and maintaining high-quality client delivery.
    • Use AI technologies to enhance investigation workflows, accelerate decision-making, streamline processes, and improve business outcomes.
    • Mentor colleagues, contribute to a positive team environment, and share expertise through thought leadership, technical content, presentations, and industry events.
    • Requirements:

      • Bachelor’s or master’s degree in Computer Science, Computer Engineering, Mathematics, Information Security, Cybersecurity, Information Assurance, Intelligence Studies, or a related field; equivalent relevant professional experience or training may also be considered.
      • Demonstrated experience in incident response, information security, digital forensics, network forensics, malware analysis, remediation, or related cybersecurity disciplines.
      • Experience leading teams and managing complex engagements in a consulting or matrixed environment.
      • Strong understanding of targeted attacks, including advanced persistent threats, organized cybercrime, and hacktivist activity.
      • Hands-on experience with computer forensic investigation tools and methodologies for determining the extent and scope of compromise.
      • Strong knowledge of network protocols, network analysis, and associated security logs, with experience using tools such as Zeek/Bro or Suricata.
      • Understanding of static and dynamic malware analysis and reverse-engineering concepts.
      • Knowledge of secure network architecture, network operations, and cybersecurity engineering principles.
      • Experience with cloud incident response methodologies in AWS, Azure, and/or Google Cloud environments.
      • Proven ability to independently complete technical tasks, manage projects, and make sound decisions in high-pressure environments.
      • Excellent written and verbal communication skills, with the ability to translate complex technical findings for both executive and technical audiences.
      • Demonstrated ability to communicate methodology, provide guidance, and coordinate effectively with internal and customer-facing teams.
      • Experience leveraging AI technologies to improve cybersecurity decision-making, workflows, efficiency, and outcomes.
      • Strong problem-solving skills, a growth mindset, and a commitment to continuously expanding technical and consulting capabilities.
      • Ability to contribute as an incident response thought leader and foster a collaborative, constructive team environment.
      • Ability to travel on short notice, up to approximately 30% of the time.
      • Willingness and ability to meet any applicable employment screening or testing requirements.
      • Benefits:

        • Base salary: $115,000–$160,000 per year for U.S. candidates, depending on experience, skills, certifications, job level, supervisory responsibilities, and location.
        • Eligibility for performance-based bonuses and equity awards.
        • Comprehensive health insurance and wellness benefits, including programs supporting physical and mental wellbeing.
        • 401(k) benefits.
        • Competitive paid time off and holidays to support time for rest and recharge.
        • Paid parental and adoption leave.
        • Professional development opportunities available across career levels and roles.
        • Employee networks, community groups, and volunteer opportunities designed to strengthen professional and social connections.
        • Remote work environment with flexibility and autonomy.
        • Opportunity to work on high-impact cybersecurity investigations involving sophisticated threats and complex enterprise environments.
        • Opportunities to contribute to industry thought leadership through technical publications, presentations, and security events.
✦ Sick of applying to 40 jobs a month?
I rewrite your resume for ATS by hand first. Once you sign off on it, AutoApply applies to up to 20 roles like this a month, cover letter in your own voice each time. From $14.99/mo, cancel anytime.
Get AutoApply
Apply now
Incident Response Principal Consultant at Jobgether — Remote